Skip to content
VulniPulse
UnratedVeeam

Advisory [CVE-2026-32998 +5] List of Security Fixes and Improvements in Veeam Service Provider Console

This security Veeam advisory covers CVE-2026-32998 and CVE-2026-58067 and 4 more CVEs affecting Service Provider Console.

KB4856 Published Jul 28, 2026
Affected products & platforms
VeeamService Provider Console
Open vendor advisory

Android app · Google Play

Monitor future Veeam CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery

Summary

List of Security Fixes and Improvements in Veeam Service Provider Console

KB ID: 4856

Product:

Published: 2026-05-27

Last Modified:

Purpose

9.3.0.35057

  • @babel/runtime upgraded to version 7.29.7
  • axios upgraded to version 1.16.1
  • dompurify upgraded to version 3.4.11
  • follow-redirects upgraded to version 1.16.0
  • form-data upgraded to version 4.0.6
  • happy-dom upgraded to version 20.9.0
  • i18next-http-backend upgraded to version 4.0.0
  • linkify-it upgraded to version 5.0.2
  • lodash upgraded to version 4.18.1
  • MailKit upgraded to version 4.16.0
  • MimeKit upgraded to version 4.16.0
  • OpenTelemetry. Api upgraded to version 1.16.0
  • picomatch upgraded to version 4.0.4
  • SkiaSharp upgraded to version 3.119.4
  • System. Security. Cryptography. Xml upgraded to version 10.0.10
  • uuid upgraded to version 14.0.0
  • vite upgraded to version 8.0.15
  • yaml upgraded to version 2.9.0

9.2.1.33875

  • AutoMapper was replaced with MagicMapper 14.0.1.
  • System. Text. RegularExpressions upgraded to version 4.3.1

More Information

As we're establishing this new process, we appreciate any feedback on the content or format of this KB article. Please let us know in the corresponding topic on the Veeam Community Forums.

If your feedback is too sensitive to be shared publicly, please submit it by opening a support case. We highly appreciate your collaboration!

Affected versions

No affected-version range was extracted from the source record. The vendor advisory is authoritative — check it before change work.

Official advisory · medium-confidence parse· fetched 8 days ago·verify at source

Fixed versions

No fixed release is recorded yet. That does not prove no patch exists — confirm against the vendor advisory.

Official advisory · medium-confidence parse· fetched 8 days ago·verify at source

Mitigation checklist

Recommended fix / mitigation
  • List of Security Fixes and Improvements in Veeam Service Provider Console KB ID: 4856 Product: Veeam Service Provider Console | 9.2 | 9.3 Published: 2026-05-27 Last Modified: 2026-08-04 Purpose This article describes all security-related fixes and improvements introduced in each release or update of Veeam Service Provider Console.
  • This article aims to provide our customers' security and compliance teams with detailed information on security improvements between releases to help them make an informed decision on whether it is critical to upgrade from their current Veeam Service Provider Console version to a later one.

Official advisory · medium-confidence parse· fetched 8 days ago·verify at source

Discussion(0)

No comments yet. Share field notes, upgrade gotchas, or questions — verify against the vendor advisory before acting on community advice.

Sign in to join the discussion.